← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to write out-of-bounds memory.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across multiple user profiles.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary code.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
6.8 MEDIUM· v3
N/A· v2
Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged APIs.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
2.4 LOW· v3
N/A· v2
Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to temporarily access to recent app list.
1Samsung
1Wear Os
Jan 9, 2026
Oct 10, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information.
1Samsung
1Android
Oct 23, 2025
Oct 10, 2025
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Out-of-bounds write in fingerprint trustlet prior to SMR Oct-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
1Samsung
1Android
Oct 30, 2025
Sep 12, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
1Samsung
1Android
Nov 12, 2025
Sep 12, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.
1Samsung
1Good Lock
Jan 12, 2026
Sep 4, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper export of component in GoodLock prior to version 2.2.04.95 allows local attackers to install arbitrary applications from Galaxy Store.
1Samsung
1Android
Sep 19, 2025
Sep 3, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Insecure Storage of Sensitive Information in Secure Folder prior to Android 16 allows local attackers to access sensitive information.
1Samsung
1Sassistant
Sep 5, 2025
Sep 3, 2025
N/A· v4
3.3 LOW· v3
N/A· v2
Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerary information.
1Samsung
1Sassistant
Sep 5, 2025
Sep 3, 2025
N/A· v4
3.3 LOW· v3
N/A· v2
Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerary information.
1Samsung
1Sassistant
Sep 5, 2025
Sep 3, 2025
N/A· v4
3.3 LOW· v3
N/A· v2
Improper verification of intent by SamsungExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerary information.
1Samsung
1Notes
Sep 9, 2025
Sep 3, 2025
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper access control in Samsung Notes prior to version 4.4.30.63 allows physical attackers to access data across multiple user profiles. User interaction is required for triggering this vulnerability.
1Samsung
1Notes
Sep 9, 2025
Sep 3, 2025
N/A· v4
5.0 MEDIUM· v3
N/A· v2
Improper access control in Samsung Notes prior to version 4.4.30.63 allows local privileged attackers to access exported note files. User interaction is required for triggering this vulnerability.
1Samsung
1Calendar
Sep 29, 2025
Sep 3, 2025
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper access control in Samsung Calendar prior to version 12.5.06.5 in Android 14 and 12.6.01.12 in Android 15 allows physical attackers to access data across multiple user profiles.
1Samsung
1Android
Sep 11, 2025
Sep 3, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds write in libsavsvc.so prior to SMR Sep-2025 Release 1 allows local attackers to potentially execute arbitrary code.
1Samsung
1Android
Sep 11, 2025
Sep 3, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control in ContactProvider prior to SMR Sep-2025 Release 1 allows local attackers to access sensitive information.